Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2012-0862

Опубликовано: 09 мая 2012
Источник: redhat
CVSS2: 2.6
EPSS Низкий

Описание

builtins.c in Xinetd before 2.3.15 does not check the service type when the tcpmux-server service is enabled, which exposes all enabled services and allows remote attackers to bypass intended access restrictions via a request to tcpmux port 1.

Отчет

Red Hat Enterprise Linux 5 is now in Production 3 Phase of the support and maintenance life cycle. This flaw has been rated as having Low security impact and is not currently planned to be addressed in future updates. For additional information, refer to the Red Hat Enterprise Linux Life Cycle: https://access.redhat.com/support/policy/updates/errata/.

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=790940xinetd: enables unintentional services over tcpmux port

EPSS

Процентиль: 66%
0.00535
Низкий

2.6 Low

CVSS2

Связанные уязвимости

ubuntu
около 13 лет назад

builtins.c in Xinetd before 2.3.15 does not check the service type when the tcpmux-server service is enabled, which exposes all enabled services and allows remote attackers to bypass intended access restrictions via a request to tcpmux port 1.

nvd
около 13 лет назад

builtins.c in Xinetd before 2.3.15 does not check the service type when the tcpmux-server service is enabled, which exposes all enabled services and allows remote attackers to bypass intended access restrictions via a request to tcpmux port 1.

debian
около 13 лет назад

builtins.c in Xinetd before 2.3.15 does not check the service type whe ...

github
больше 3 лет назад

builtins.c in Xinetd before 2.3.15 does not check the service type when the tcpmux-server service is enabled, which exposes all enabled services and allows remote attackers to bypass intended access restrictions via a request to tcpmux port 1.

oracle-oval
почти 12 лет назад

ELSA-2013-1302: xinetd security and bug fix update (LOW)

EPSS

Процентиль: 66%
0.00535
Низкий

2.6 Low

CVSS2